What We Do

Privacy & Access Law Services

From compliance consulting to breach response, we provide the full spectrum of privacy and access law support BC organizations need, delivered with precision and statutory authority.

01FIPPA · PIPA · PIPEDA

Enterprise Privacy Compliance

Comprehensive privacy compliance guidance across British Columbia’s privacy legislation and applicable federal law, including FIPPA (R.S.B.C. 1996, c. 165), PIPA (S.B.C. 2003, c. 63), and PIPEDA (S.C. 2000, c. 5). We evaluate your regulatory obligations, identify areas of risk and non-compliance, and develop proportionate, practical controls tailored to your organization and aligned with the accountability principles and requirements of each applicable Act.

What's included

Compliance gap assessments
Obligations mapping by Act
Remediation roadmaps
Ongoing advisory retainers
02FIPPA · PIPA · PIPEDA

Freedom of Information

End-to-end advisory support for organizations responding to freedom of information and access requests under FIPPA, PIPA, and PIPEDA. We assess your obligations, understand the context and circumstances underlying each request, and support processing from intake and records searches, statutory timelines, exemptions, redaction, review, and disclosure.

What's included

Intake triage and tracking
Responsive record identification
Redacting sensitive and confidential information
Third-party notification support
Disclosure package preparation
03FIPPA · PIPA · PIPEDA

Privacy Impact Assessments

Rigorous PIAs for new programs, systems, and initiatives that involve the collection, use, or disclosure of personal information. Our assessments satisfy OIPC expectations and provide defensible documentation of your due diligence.

What's included

Risk identification and scoring
Proportionality analysis
OIPC-ready documentation
Mitigation recommendations
04FIPPA · PIPA · PIPEDA

Privacy Management Programs

Design and implementation of enterprise-wide privacy management programs that embed accountability into your organization's operations. We build the governance structures, oversight mechanisms, and continuous improvement processes that demonstrate sustained compliance to regulators and the public.

What's included

Governance framework design
Accountability structure mapping
Oversight and audit mechanisms
Continuous improvement processes
05FIPPA · PIPA · PIPEDA

Staff Training & Workshops

Tailored training programs for public bodies and private sector teams. From front-line staff to senior leadership, we build organizational capacity to handle personal information lawfully and confidently.

What's included

Role-specific curriculum design
In-person and virtual delivery
Leadership briefings
Post-training assessment
06FIPPA · PIPA · PIPEDA

Breach Response & Notification

Immediate advisory support when a privacy breach occurs. We guide organizations through containment, assessment, notification obligations, and remediation, minimizing regulatory exposure and reputational harm.

What's included

Breach containment guidance
Severity and risk assessment
Notification obligation analysis
Remediation planning
07FIPPA · PIPA · PIPEDA

Policy Development

Drafting and review of privacy policies, information management frameworks, and governance documents. We produce clear, enforceable policies that reflect current legislative requirements and OIPC guidance.

What's included

Privacy policy drafting and review
Information management frameworks
Governance document suites
OIPC guidance alignment

Not sure which service fits your situation?

Book a free consultation and we will identify the right advisory path for your organization.